JavaScript is off. The country switcher and the demos need it; everything else on this page works.

WebCrew
Start free

Plugins · Security & anti-spam

Really Simple Security with AI, on every WordPress site you look after

Security plugins protect the site from inside. What they cannot do is tell you the site is down, that its core files changed on the server, or that a plugin two sites over has a published vulnerability. WebCrew monitors the site 24/7, matches Really Simple Security's installed version against the vulnerability databases, and updates it with a restore point when you say go.

Free for one site. Connect it in five minutes. No card.

Really Simple Security belongs to its publisher; WebCrew is not affiliated with it.

Really Simple Security3M+ active installs · version 9.8.1
Monitoring 24/7uptime from two regions, health scoreIncluded
Vulnerability checkReally Simple Security's version matched against the databasesIncluded
UpdatesOn your schedule; restore point first, code difference kept, rolled back when a check failsIncluded
Assistant actions in Really Simple Securitychanges made for you, logged, one click to undoComing soon

Easily improve site security with WordPress Hardening, Two-Factor Authentication (2FA), Login Protection,…

What goes wrong

Three things that go wrong on sites running Really Simple Security, and what you see instead

Each card is one conversation: what happened, what WebCrew did, and the moment you stepped in.

A client saw the browser's not-secure warning on one page.

  • WebCrew's certificate check is green, so the cause is mixed content: one image on that page still loads over HTTP.
  • You fix the image URL; the assistant shows the one line that changes.
  • The page is clean again and the log says who fixed what.

Certificate and content are checked separately, so the cause is clear.

A site is serving a fake CAPTCHA to visitors.

  • Core-file integrity finds a changed file and the time it changed.
  • Alert to you with the file, the diff and the plugin that let it in.
  • Over SSH we help clean it: file replaced, unknown admin removed, plugin updated, restore point before each step.

Cleanup help, never a guarantee it stays clean.

An administrator account appeared that nobody created.

  • A new administrator is created on the site.
  • The check sees it: name, e-mail, time added, on every site you run.
  • You remove it and rotate the passwords, with the log as your record.

Flagged the moment the check sees it.

What you can ask

Questions and changes about Really Simple Security, in plain words

Ask from the WebCrew dashboard, from your own AI tool over MCP, or, as it rolls out, from the assistant inside wp-admin Coming soon. Reading is instant; every change is logged and can be undone in one click first.

  • Which sites have Really Simple Security active and which have mixed content warnings anyway?
  • When does the certificate on this site renew, and does the plugin still force HTTPS?
  • Is the security headers feature on across all sites?

Included on every site

What WebCrew does for a site running Really Simple Security

Every change WebCrew makes takes a restore point first and can be undone in one click; you choose where it should ask you first. Monitoring reads; every change is logged and waits for a person.

Everything in site management

Uptime 24/7 from two regions

A site that stops answering, or answers with something else, reaches you within minutes with the response it gave.

Security scan and vulnerability match

Core-file integrity, unknown administrators, and Really Simple Security's installed version matched against the public vulnerability databases.

Updates with a restore point

On your schedule; restore point first, code difference kept, rolled back when a check fails.

Ask for changes in plain words

The assistant makes the change in Really Simple Security, shows you what it did, and keeps a restore point so one click undoes it Coming soon. Your own AI tools connect today over MCP.

Connecting

How to connect a site that runs Really Simple Security, and what we recommend

Where the host allows SSH keys, we recommend SSH: every file compared, not only what WordPress reports, and cleanup help when a site is compromised. Where it does not, the connector plugin covers monitoring, updates and Really Simple Security's version check in five minutes.

Connector plugin

Upload in wp-admin. No server access needed.
  • 24/7 uptime, health score, versions, administrators
  • Vulnerability matching and updates with a restore point
  • One-click login, DNS and mail settings

Five minutes. Remove the plugin and the site is disconnected.

Recommended

SSH

One key, scoped to the site's user on the server.
  • Everything the connector does
  • File-level integrity checks and faster updates with a full restore point
  • Malware cleanup and staging copies, when a site needs them

Ten minutes. The key is revoked from your dashboard at any time.

How connecting works, step by step

Questions

Before you connect a Really Simple Security site

Do I still need Really Simple Security with WebCrew?

Yes, if it protects the site from inside: a firewall, login limits, malware signatures. WebCrew watches from outside and across all your sites, and adds the file-level check and the vulnerability match.

Does WebCrew remove malware?

If a site is compromised, we help clean it: changed core files replaced, unknown administrators removed, the plugin that let it in updated or removed, with a restore point before each step. Cleanup needs the SSH connection. No tool can guarantee a site stays clean.

Will two security tools conflict?

Monitoring reads; it does not install a firewall or change Really Simple Security's rules. The connector and Really Simple Security run side by side.

Where do the vulnerability data come from?

Public vulnerability databases, matched against the exact installed version of each plugin on each site.

Do I have to install anything besides Really Simple Security?

One of two things: the WebCrew connector plugin, uploaded in wp-admin like any plugin, or one SSH key for the site's own user. Nothing else changes on the site.

Can I use my own Claude or ChatGPT with a site that runs Really Simple Security?

Yes. Connect your tool to WebCrew over MCP and ask about the site from your own chat. Reading is instant; changes are made for you, logged, and undone in one click.

What does it cost for a site running Really Simple Security?

The first site is free, for as long as you like. Every site after that is billed per site per day, monthly, for the days it was on. Plugins are never counted.

Is my content or Really Simple Security's data used to train anything?

No. Your content is never sold and never used to train a model, by WebCrew or by a provider it uses.

What if Really Simple Security is a premium plugin with a licence?

It updates through its own licence. WebCrew shows the pending version, takes the restore point first and keeps the code difference, the same as for any other plugin.

Connect the Really Simple Security site now. The first check is done within the hour.

Free for one site. No card.

Start free